Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

0
Websites
0
Industries
0
Countries
0
Avg Score
Page 10 of 33|Showing 451-500 of 1635
mastodon.au favicon

Mastodon Australia

mastodon.au

0
TechnologyAustraliasmallMEDIUM

Mastodon Australia operates as an independent Mastodon server instance serving the Australian community within the federated social networking ecosystem known as the fediverse. The platform provides decentralized microblogging services leveraging the open source Mastodon software version 4.3.8. The website presents a clean, consistent brand and targets general users interested in social networking without ads or algorithms. The user base is modest with approximately 1,100 active users monthly, indicating a small but engaged community. Technically, the site is hosted with Cloudflare DNS services and uses modern web technologies including React-based frontend scripts. The site is mobile optimized and offers basic accessibility features, though SEO and performance optimizations are moderate. Security posture is generally good with HTTPS enforced and no exposed sensitive data, but lacks advanced security headers and DNSSEC. Privacy compliance is limited with a basic privacy policy but no cookie consent mechanism or GDPR indicators. Business credibility is supported by transparent administration and open source platform use, though contact information and incident response details are absent. Overall, the site is functional and trustworthy but could improve in privacy and security transparency.

75
53
17
80
75
60
100
socialnetworkingmastodonfediverseopensourceaustralia
Mastodon 4.3.8Cloudflare DNSJavaScriptReact (implied by chunked JS and SPA structure)
2025-07-26T09:58:02.199Z
stiebel-eltron.com.au favicon

STIEBEL ELTRON

stiebel-eltron.com.au

0
EnergyAustraliamediumHIGH

STIEBEL ELTRON is a well-established company specializing in premium hot water and heating solutions, with a strong focus on energy efficiency and sustainability. The website reflects a mature business with over 100 years of expertise, offering a broad range of products including electric water heaters, heat pumps, ventilation systems, room heaters, and water filters. Their market position is reinforced by industry certifications and a consistent brand presence targeting Australian residential and commercial customers. Technically, the website employs modern web technologies such as Bootstrap, jQuery, and multiple analytics and marketing tools including Google Tag Manager, Facebook Pixel, and Hotjar. The site is mobile-optimized, well-structured, and provides a professional user experience. However, there is room for improvement in security headers and privacy compliance mechanisms. From a security perspective, the site uses HTTPS and secure forms but lacks visible security headers and incident response information. No vulnerabilities or exposed sensitive data were detected. The WHOIS data is privacy-protected, which is common for commercial entities, though it limits direct verification of registrant details. Overall, the security posture is solid but could be enhanced with additional headers and transparency. The overall risk assessment is low, with recommendations focusing on improving security headers, implementing cookie consent for privacy compliance, and publishing incident response or vulnerability disclosure policies to enhance trust and compliance.

15
53
2
85
77
70
-
energyheatinghotwaterheatpumpsventilation+3 more
Bootstrap 4.5.0jQuery 3.3.1FontAwesome 5.14.0Google Tag Manager+5

Partner Domains:

www.stiebelstore.com.au
partner
2025-07-25T18:44:24.966Z
business.gov.au favicon

business.gov.au

business.gov.au

0
GovernmentAustraliaenterpriseMEDIUM

business.gov.au is the official Australian Government portal providing comprehensive support, information, and access to grants, registrations, and business services for Australian businesses and entrepreneurs. It holds a strong market position as a trusted government resource, offering key services such as business grants management and the Research and Development Tax Incentive portal. The website targets Australian businesses of all sizes, facilitating their success through centralized government resources. Technically, the website employs a mature digital infrastructure including Sitecore CMS, Salesforce Live Agent for customer engagement, Coveo for search capabilities, and integrates analytics and tracking tools like Google Analytics, Hotjar, and Azure Application Insights. The site demonstrates good performance, mobile optimization, and accessibility features, reflecting a high level of digital maturity. From a security perspective, the site enforces HTTPS with a robust Content Security Policy, uses reCAPTCHA to mitigate bot activity, and maintains privacy and cookie policies with consent mechanisms. While DNSSEC is not enabled, the domain's WHOIS data confirms government ownership with strong registrar protections, indicating a high trust level. No critical vulnerabilities or exposed sensitive data were detected. Overall, business.gov.au presents a low-risk profile with excellent content quality, strong business credibility, and good security posture. Strategic recommendations include enabling DNSSEC, publishing a dedicated security policy or incident response page, and adding a security.txt file to facilitate vulnerability disclosures.

75
73
17
85
82
75
100
businessgovernmentaustraliagrantssupport+3 more
Google Tag ManagerGoogle AnalyticsHotjarSalesforce Live Agent+2

Partner Domains:

portal.business.gov.au
service
incentives.business.gov.au
service
2025-07-24T20:48:48.530Z
apra.gov.au favicon

Australian Prudential Regulation Authority

apra.gov.au

0
FinanceAustralialargeLOW

The Australian Prudential Regulation Authority (APRA) is the official Australian government prudential supervisor responsible for ensuring the stability, competitiveness, and efficiency of the financial system. The website serves as a comprehensive resource for regulated industries including banking, insurance, superannuation, and financial corporations, providing regulatory standards, consultations, data, and licensing information. APRA holds a key position in Australia's financial regulatory landscape with a large organizational footprint and a clear mandate. Technically, the website is built on Drupal 10, leveraging modern web technologies such as Google reCAPTCHA v3 and Google Tag Manager for security and analytics. The site is well-optimized for mobile and accessibility, with fast performance and professional design. Security posture is strong with HTTPS enforced and secure form handling, although explicit security headers could be verified and a dedicated security policy page would enhance transparency. The WHOIS data is limited due to privacy and registrar policies but aligns with Australian government domain registration norms, supporting legitimacy. No suspicious or malicious indicators were found. The site maintains good privacy compliance with clear privacy and cookie policies and uses consent mechanisms. Overall, APRA's website is a trustworthy, authoritative source for prudential regulation information in Australia, with strong business credibility and technical maturity. Minor improvements in security policy transparency and vulnerability disclosure could further strengthen its security posture.

90
53
47
90
100
75
100
governmentfinanceregulationprudentialsupervision+2 more
Drupal 10Google reCAPTCHA v3Google Tag ManagerVimeo embeds

Partner Domains:

asic.gov.au
partner
rba.gov.au
partner
2025-07-24T17:27:01.696Z
megaport.com favicon

Megaport

megaport.com

0
TechnologyAustralialargeMEDIUM

Megaport is a leading Network as a Service (NaaS) provider specializing in scalable bandwidth solutions for public and private cloud connectivity, metro ethernet, data center backhaul, and Internet Exchange services. The company positions itself as a global leader in cloud networking, targeting enterprises, cloud service providers, and data centers. The website reflects a mature digital presence with comprehensive service descriptions and a professional design. Technically, the site leverages modern web technologies including jQuery, Google Tag Manager, OneTrust for consent management, and Visual Website Optimizer for A/B testing, indicating a high level of digital maturity and performance optimization. Security posture is strong with HTTPS enforcement, security headers, and privacy compliance mechanisms in place. However, the absence of WHOIS registration data and explicit security policies or incident response information slightly detracts from overall trust. The site is free from adult or questionable content and maintains good privacy compliance. Strategic recommendations include publishing detailed security policies, incident response contacts, and vulnerability disclosure information to enhance transparency and trust.

30
88
17
70
75
80
100
megaportcloudnetworkingnetworkasaservicedatacenterconnectivitycloudconnectivity
jQuery 3.7.1Google Tag ManagerOneTrust Consent ManagementVisual Website Optimizer (VWO)+1
2025-07-24T03:37:12.817Z
R

Resene Paints Ltd

resene.com.au

0
RetailAustralialargeHIGH

Resene Paints Ltd is a well-established manufacturer and retailer of paint, stains, coatings, wallpaper, and curtains primarily serving the Australian and New Zealand markets. The company offers a broad range of products and services targeting DIYers, specifiers, painters, artists, and schools, supported by extensive online resources including virtual painting tools and specification software. The website reflects a mature digital presence with comprehensive content, clear navigation, and strong branding reinforced by multiple industry awards and environmental certifications. Technically, the site employs a mix of legacy and modern technologies, including jQuery, Google reCAPTCHA, Facebook Pixel, and Google Tag Manager, ensuring functional marketing and user interaction capabilities. Security posture is generally strong with HTTPS enforced and secure form handling, though improvements are recommended in security headers and updating legacy libraries. Privacy compliance is moderate, with a privacy policy present but lacking explicit cookie consent mechanisms. Overall, the domain registration data is incomplete due to WHOIS query failure, but the website content and external trust signals support legitimacy. Strategic recommendations include enhancing security headers, updating JavaScript libraries, and implementing cookie consent to improve compliance and security posture.

15
53
2
75
72
60
20
paintdecoratingdiycolourwallpaper+5 more
jQuery 1.8.3Google reCAPTCHAFacebook PixelGoogle Tag Manager+2

Partner Domains:

shop.resene.com.au
partner
techspec.resene.co.nz
partner

+2 more partners

2025-07-22T21:22:58.579Z
concur.com.au favicon

Concur Technologies, Inc.

concur.com.au

0
TechnologyAustraliaenterpriseMEDIUM

SAP Concur Australia operates as a regional branch of Concur Technologies, Inc., a leading provider of integrated expense, travel, and invoice management solutions. The website presents a comprehensive portfolio of SaaS products designed to automate and streamline business spend management, targeting enterprises, public sector, and small businesses. The company leverages its strong market position as part of SAP, offering trusted and scalable solutions with a user-friendly mobile app and extensive integrations. The digital presence is professional, well-branded, and content-rich, supporting lead generation and customer engagement through demos, case studies, and contact forms. Technically, the website is built on Drupal CMS with modern JavaScript frameworks and integrates advanced monitoring and performance tools such as New Relic and Boomerang. It employs Google reCAPTCHA for form security and TrustArc for cookie consent management, reflecting a mature digital infrastructure. The site is optimized for mobile devices, accessibility, and SEO, ensuring a high-quality user experience. From a security perspective, the site enforces HTTPS, uses CAPTCHA to prevent abuse, and manages cookie consent in compliance with GDPR. However, explicit security policies, incident response contacts, and vulnerability disclosure information are not publicly available, representing areas for improvement. The WHOIS data is privacy protected, which is typical for enterprise SaaS providers, and does not raise immediate concerns about legitimacy. Overall, SAP Concur Australia’s website demonstrates a strong business and technical foundation with good security hygiene. Strategic recommendations include publishing detailed security policies, incident response contacts, and enhancing HTTP security headers to further strengthen trust and compliance.

55
70
25
40
100
70
100
expensemanagementtravelmanagementinvoiceautomationsapconcurbusinesssoftware+5 more
JavaScriptGoogle reCAPTCHA v2Drupal CMSNew Relic monitoring+4

Partner Domains:

www.sap.com
parent
2025-07-22T05:19:07.145Z
modemedia.com.au favicon

Modemedia

modemedia.com.au

0
MediaAustraliamediumHIGH

Modemedia is a well-established Australian creative branding and digital agency based in Parramatta, with over 25 years of experience in growing brands through strategic design and storytelling. The company offers a comprehensive suite of services including strategy, design, digital marketing, retail design, and brand management, targeting businesses seeking to enhance their brand presence. The website reflects a professional and consistent brand image, supported by active social media channels and structured data for SEO. Technically, the website is built on WordPress with modern plugins and tools such as Slider Revolution, WPBakery Page Builder, and tracking integrations like Facebook Pixel and Hotjar. The site demonstrates good mobile optimization and SEO practices, although performance is moderate and accessibility features are basic. Security posture is adequate with HTTPS enabled, but lacks some recommended security headers and explicit privacy and cookie policies. The absence of WHOIS registration details limits the ability to fully verify domain legitimacy, though the website content and social presence support its authenticity. Tracking and marketing tools are used with some GDPR prior consent mechanisms, but explicit privacy and cookie policies are not found, indicating room for compliance improvement. Overall, Modemedia presents a credible and professional digital presence with solid business and technical foundations. Enhancing security headers, privacy compliance, and WHOIS transparency would further strengthen trust and reduce risk.

15
35
2
85
72
60
20
brandingdigitalagencycreativemarketingdesign+2 more
WordPress 5.4.16PHPjQueryGoogle Fonts+5
2025-07-17T15:51:25.563Z
austgamingexpo.com favicon

Australasian Gaming Expo

austgamingexpo.com

0
HospitalityAustraliamediumHIGH

The Australasian Gaming Expo (AGE) is a well-established event organizer specializing in the gaming and hospitality industry in Australia. The website serves as a comprehensive platform for event information, exhibitor details, visitor registration, and industry news. It targets professionals and businesses within the gaming and hospitality sectors, positioning itself as a cornerstone event in the Australasian market. The business model revolves around event hosting, exhibitor services, and networking facilitation. Technically, the website is built on WordPress with modern plugins such as Yoast SEO and integrates Google Analytics and Google reCAPTCHA for analytics and security. The site is mobile-optimized and demonstrates good SEO practices, although performance is moderate. Hosting details are limited but the domain is registered with a reputable registrar and has a long history dating back to 2003. From a security perspective, the site uses HTTPS and implements reCAPTCHA for form protection, but lacks DNSSEC and explicit security headers. There is no visible cookie consent mechanism or detailed privacy compliance features, which could be improved. No incident response or vulnerability disclosure information is publicly available, indicating room for enhancement in security transparency. Overall, the website is professional, trustworthy, and serves its business purpose effectively. Strategic improvements in security headers, privacy compliance, and incident response transparency would strengthen its security posture and user trust.

15
53
2
40
72
60
-
gamingexpohospitalitytechnologyevent+1 more
WordPressYoast SEO pluginjQuerySwiper.js+2

Partner Domains:

au.registration.entegy.events
partner
austgamingexpotravel.com
partner

+1 more partners

2025-07-17T11:13:25.070Z
austroads.com.au favicon

Austroads

austroads.com.au

0
TransportationAustraliamediumMEDIUM

Austroads is a government-related organization focused on supporting efficient, reliable, and safe road transport across Australia and New Zealand. It provides authoritative guidance, research, and standards covering drivers, vehicles, road safety, infrastructure, environment, and transport operations. The website serves government agencies, transport authorities, health professionals, and industry stakeholders with comprehensive resources including guides, publications, data services, and training programs. The organization holds a leading market position as a collaborative body for road transport standards in the region. Technically, the website is built on the Squiz Matrix CMS platform and leverages modern web technologies such as jQuery, Google Analytics, Google Tag Manager, Hotjar, and DataTables. It uses Cloudflare for DNS and likely CDN services, ensuring good performance and security. The site is mobile-optimized, accessible, and SEO-friendly, with a professional design and clear navigation. From a security perspective, the website enforces HTTPS and employs secure forms with validation. However, it lacks DNSSEC, a published security policy, incident response contacts, and a cookie consent mechanism, which are areas for improvement. No vulnerabilities or exposed sensitive data were detected. The WHOIS data confirms the domain is registered by the Department of Finance, consistent with its government affiliation, and domain status codes indicate protection against unauthorized changes. Overall, Austroads presents a trustworthy, professional, and authoritative online presence with a strong business credibility and technical foundation. Strategic improvements in privacy compliance and security transparency would further enhance its posture and user trust.

40
53
10
75
67
70
100
transportationgovernmentroadsafetyinfrastructureaustralia+4 more
jQueryGoogle AnalyticsGoogle Tag ManagerHotjar+4
2025-07-17T06:34:28.030Z
oztackle.com.au favicon

OZTackle

oztackle.com.au

0
RetailAustraliasmallMEDIUM

Oztackle is an Australian owned and operated e-commerce retailer specializing in fishing and outdoor gear. The website offers a wide range of products including fishing rods, reels, lures, lines, tackle, camping, boating, and accessories. It targets fishing enthusiasts and outdoor consumers primarily within Australia, providing convenient payment options such as Afterpay and PayPal along with free shipping across the country. The business positions itself as a competitive player in the Australian fishing retail market with a focus on major brands and affordability. Technically, the website is built on the BigCommerce platform using the Stencil framework, integrating modern technologies such as Google Analytics (both GA4 and Universal Analytics), Facebook Pixel, and Beeketing marketing tools. The site demonstrates good mobile optimization and moderate performance, with standard SEO and accessibility features. Hosting is managed via BigCommerce's CDN infrastructure. From a security perspective, the site enforces HTTPS and uses reputable payment providers, but lacks some recommended security headers like Content-Security-Policy and X-Frame-Options. There is no visible security policy or incident response contact information, and no vulnerability disclosure mechanism is present. Cookie consent is implemented with GDPR-related messaging, but no explicit privacy or terms of service pages were found in the provided content. Overall, the website is functional, professionally designed, and trustworthy for general audiences. However, improvements in privacy compliance documentation, security header implementation, and explicit contact information would enhance its security posture and user trust. The domain registration is consistent and transparent, registered through a reputable registrar without privacy protection, supporting legitimacy.

40
65
17
55
82
65
100
fishinge-commerceoutdoorretailaustralia+1 more
BigCommerceGoogle Analytics (GA4 and UA)Facebook PixelBeeketing SDK+2
2025-07-14T18:47:21.145Z
plinkoaustralia.com favicon

Plinko

plinkoaustralia.com

0
OtherAustraliasmallMEDIUM

Plinko Australia is a niche affiliate website dedicated to providing comprehensive information about the Plinko gambling game targeted at Australian players. The site offers detailed game mechanics, betting strategies, demo modes, and curated lists of recommended online casinos with bonuses. It serves as an informational and promotional platform, leveraging affiliate marketing to monetize traffic. The website is relatively new, launched in 2024, and focuses on the Australian gambling market with multi-language support for other regions. Technically, the site is built with standard web technologies (HTML5, CSS, JavaScript) and uses Cloudflare for DNS and CDN services. The site is mobile-optimized and SEO-friendly with proper meta tags and structured data. However, it lacks advanced security headers and DNSSEC, which could improve its security posture. No forms are present that collect personal data directly, reducing immediate privacy risks. From a security perspective, the site enforces HTTPS and has domain transfer protections but lacks published security policies or incident response contacts. Privacy compliance is basic, with a privacy policy present but no cookie consent mechanism or GDPR-specific indicators. The site links to multiple social media platforms and trusted gambling support organizations, enhancing trustworthiness. Overall, the website presents a moderate risk profile with good business credibility but could improve privacy compliance and security best practices. Strategic recommendations include enabling DNSSEC, adding security headers, implementing cookie consent, and publishing security and incident response policies.

50
53
17
40
75
70
100
gamblingcasinoplinkoonlinegamingaustralia+1 more
HTML5CSSJavaScriptCloudflare (DNS and CDN)

Partner Domains:

streamka.info
partner
trafflinks.site
partner
2025-07-14T05:01:19.591Z
culturefirst.com favicon

Culture Amp

culturefirst.com

0
TechnologyAustralialargeMEDIUM

Culture Amp is a leading technology company specializing in employee experience platforms that empower HR professionals, people leaders, and change agents to build better workplaces. Their platform offers comprehensive tools for employee engagement, performance management, development, and people analytics. The company maintains a strong market position with a large, global user base and a vibrant community including local chapters and a digital Slack community. The website reflects a professional and consistent brand image with rich content and multimedia engagement. Technically, the website leverages modern web technologies including React, Wistia for video, Google Tag Manager, Optimizely for experimentation, HubSpot for forms, and Sentry for error tracking. The site is well-optimized for performance, mobile responsiveness, accessibility, and SEO. Privacy and cookie consent mechanisms are robust and GDPR compliant, reflecting a mature digital infrastructure. From a security perspective, the site enforces HTTPS, uses cookie consent with granular controls, and integrates error monitoring. While explicit security headers are not fully confirmed, the overall posture is strong with no visible vulnerabilities or exposed sensitive data. The absence of WHOIS data is noted but likely due to privacy protection, not indicative of malicious intent. Overall, Culture Amp's website demonstrates a high level of professionalism, security, and compliance, supporting its reputation as a trusted leader in the HR technology space.

55
73
25
85
100
65
100
employeeexperiencehrcommunitypeopleanalyticsemployeeengagementperformancemanagement+3 more
Wistia video embedsGoogle Tag ManagerOptimizelyHubSpot forms+2

Partner Domains:

chapters.culturefirst.com
partner
whereshouldwebeginatwork.com
partner
2025-07-14T03:47:46.652Z
turnitin.com.au favicon

Turnitin

turnitin.com.au

0
EducationAustraliaenterpriseMEDIUM

Turnitin Australia (turnitin.com.au) is a regional website of Turnitin, a leading global provider of academic integrity and plagiarism detection solutions. The site targets educational institutions and students in the Asia Pacific region, offering tools to empower original work and uphold academic standards. The business model is primarily B2B SaaS, serving schools, universities, and educators with plagiarism checking, grading, and feedback services. The website reflects a mature enterprise with consistent branding and professional content tailored to its audience. Technically, the website employs a modern technology stack including Bootstrap 4, jQuery, Google Tag Manager, and OneTrust for cookie consent, indicating a well-maintained digital infrastructure. The site is mobile-optimized with good SEO and accessibility basics, though some accessibility enhancements could be made. Performance is moderate, suitable for enterprise-grade educational platforms. From a security perspective, the site enforces HTTPS with strong SSL configuration and includes standard security headers. It uses Google reCAPTCHA to protect forms and implements a comprehensive cookie consent mechanism aligned with GDPR. However, explicit security policies and vulnerability disclosure mechanisms are not found, which could be improved to enhance transparency and incident response readiness. Overall, the domain and website appear legitimate and trustworthy, with no signs of blocking or WAF interference. The lack of WHOIS registrant details is typical for enterprise domains using privacy protection. The site scores highly on content quality, technical implementation, security posture, privacy compliance, and business credibility, making it a reliable resource in the education technology sector.

15
88
17
70
57
70
100
educationplagiarismacademicintegritystudentoriginality+2 more
jQueryBootstrapGoogle Tag ManagerGoogle reCAPTCHA+2

Partner Domains:

www.turnitin.com
sister
www.turnitin.ca
sister

+1 more partners

2025-07-14T01:30:18.389Z
soprema.com.au favicon

SOPREMA

soprema.com.au

0
ManufacturingAustralialargeMEDIUM

SOPREMA is an international manufacturer specializing in innovative waterproofing, insulation, soundproofing, and vegetative solutions for the roofing, building envelope, and civil engineering sectors. The company targets construction professionals and operates primarily in the manufacturing and construction industries with a large-scale business presence in Australia and internationally. The website reflects a professional B2B business model with a focus on product documentation, warranties, and project showcases, supporting its market position as a trusted supplier. Technically, the website is built on WordPress with Elementor and uses modern JavaScript frameworks such as Vue.js and Axios for enhanced user experience. It integrates multiple analytics and marketing tools including Google Analytics, Facebook Pixel, Crazy Egg, and HubSpot, indicating a mature digital marketing infrastructure. The site is mobile-optimized and SEO-friendly, though accessibility features are basic. From a security perspective, the site uses HTTPS with a good SSL configuration but lacks explicit security headers and does not provide visible security or incident response policies. No privacy or cookie policies were found, which is a compliance gap. The WHOIS data shows a legitimate domain registration without privacy protection, consistent with a professional business. Overall, the website is professional and trustworthy but would benefit from enhanced privacy compliance, security headers, and incident response disclosures to improve its security posture and regulatory adherence.

55
35
2
70
67
60
100
manufacturingconstructionwaterproofinginsulationsoundproofing+2 more
jQueryVue.jsAxiosGoogle Tag Manager+5

Partner Domains:

soprema.ca
partner
soprema.fr
partner

+2 more partners

2025-07-13T18:42:43.740Z